logo

Fake DeepSeek Ads Spread Malware to Google Users

ID: 3f7cc9e1-bdfc-5356-9e91-31b7ed3a21b5

STIX ID: report--3f7cc9e1-bdfc-5356-9e91-31b7ed3a21b5

Feed Name: Dark Reading

Threat Score
65/100

Date Published: 2025-03-27

Date Updated: 2026-05-05

Author: Rob Wright

...
...

Malwarebytes researchers identified fake Google-sponsored ads impersonating the DeepSeek AI brand that lead to malicious sites delivering the Heracles MSIL infostealer—an information-stealing Trojan believed to originate from Russia and focused on crypto wallets; Google says it suspended the advertiser but ad platform abuse remains an ongoing problem.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.